TRPD-26-04537
Operational Resilience & Cyber Security Lead
Lead the organization’s cyber operational resilience program by establishing governance aligned to standards such as DORA, NIST CSF, ISO 27001/22301 and NIS2. The role connects cybersecurity, IT disaster recovery and business continuity to map critical services and dependencies, define impact tolerances and recovery objectives (MTD/RTO/RPO), run cyber crisis simulations (e.g., ransomware, supply chain compromise, multi-site outages), assess third-party cyber resilience, and partner with SOC/Incident Response during live events and post-incident reviews to drive continuous improvement.
Position summary
- Location
- India
- Workplace
- Hybrid
- Employment
- Full Time
- Experience
- Minimum 7 years and Maximum 12 years
Role overview
Why This Role Matters.
Lead the organization’s cyber operational resilience program by establishing governance aligned to standards such as DORA, NIST CSF, ISO 27001/22301 and NIS2. The role connects cybersecurity, IT disaster recovery and business continuity to map critical services and dependencies, define impact tolerances and recovery objectives (MTD/RTO/RPO), run cyber crisis simulations (e.g., ransomware, supply chain compromise, multi-site outages), assess third-party cyber resilience, and partner with SOC/Incident Response during live events and post-incident reviews to drive continuous improvement.
Your Impact
Deliver Enterprise Value
Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.
Collaboration
Work Across Teams
Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.
Growth
Learn Continuously
Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.
Career Path
Grow With Ubique
Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.
Responsibilities
What You'll Be Doing.
Every role at Ubique contributes directly to solving meaningful business challenges for our clients.
Service & Dependency Mapping: Map critical end-to-end business functions against supporting IT systems, third-party vendors, data assets, and infrastructure.
Impact Tolerances & Metrics: Define and monitor maximum tolerable downtime (MTD) and recovery objectives (RTO/RPO) for cyber incident scenarios.
Scenario Testing & Simulations: Design and execute complex cyber crisis exercises (e.g., ransomware, supply chain compromise, multi-site outages) with senior leadership and technical teams.
Third-Party Cyber Risk Management: Evaluate cyber resilience across key vendors, cloud providers, and digital ecosystem partners.
Response & Continuous Improvement: Partner with SOC and Incident Response teams during live events; conduct post-incident reviews to remediate operational gaps.
Technology stack
Tools & Technologies.
The platforms and technologies you'll use to build modern, enterprise-grade solutions.
Operational resilience
Cyber operational resilience
Cybersecurity governance
NIST CSF
ISO 27001
ISO 22301
DORA
NIS2
BCBS operational resilience
Business continuity
IT disaster recovery
Service mapping
Dependency mapping
Third-party risk management
Vendor risk
Cloud provider risk
SOC
Incident response
Ransomware
Supply chain compromise
Requirements
Skills & Experience.
We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.
Essential
Required Qualifications
Cybersecurity and cyber operational resilience governance
Operational resilience frameworks and regulatory alignment (e.g., DORA, NIST CSF, ISO 27001, ISO 22301, NIS2, BCBS operational resilience)
Business continuity management (BCM) and IT disaster recovery (DR) concepts
Critical service identification and end-to-end service & dependency mapping (systems, vendors, data, infrastructure)
Defining and monitoring impact tolerances and recovery metrics (MTD, RTO, RPO) for cyber scenarios
Cyber crisis scenario testing/exercises and simulations (e.g., ransomware, supply chain compromise, multi-site outages)
Third-party cyber risk management (vendors, cloud providers, ecosystem partners)
Incident response partnership with SOC/IR and post-incident reviews (lessons learned, remediation of gaps)
Preferred
Nice to Have
Certifications: CRISC, CISM, CISSP, CBCP, CORP (preferred)
Experience in operational risk (as a function)
Experience working with senior leadership during crisis exercises
What you'll gain
More Than Just A Job.
We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.
Global Exposure
Collaborate with international clients and multicultural teams on enterprise programmes.
Continuous Learning
Expand your expertise through mentoring, certifications and hands-on project experience.
Career Growth
Take ownership, develop leadership skills and grow your consulting career over time.
Flexible Working
Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.
People First
Join a supportive culture where collaboration, respect and long-term relationships come first.
Enterprise Projects
Work on meaningful technology initiatives for leading organisations across industries.
Apply
Apply for Operational Resilience & Cyber Security Lead
One page, about two minutes. We only ask for what we actually need to have a first conversation.